Please Help! Seems like routing issue possibly Nat?
I have an ASA5510 software ver 7.2 I will post most of the config below however I believe I am missing something simple so here goes.
Internal server 10.10.1.9 /24
ASA inside interface 10.10.1.1 /24
ISP Router 10.10.1.250 /24
Across the WAN at a different location 10.1.6.240 /24
From 10.10.1.9 I can ping 10.10.1.1 but CAN NOT ping anything past this. However if I manually add a routing entry into the 10.10.1.9 server I can then tracert my way through to 10.1.6.240. We currently have all our connections VPN'd so this is what we are doing for now until this is resolved. Tracert'ing from 10.1.6.240 I see all the hops but dies at the firewall. Please Help!! Below is most the the config
Re: Please Help! Seems like routing issue possibly Nat?
One more thing I should clarify the route I am putting into the 10.10.1.9 server is
route add 10.1.6.0 mask 255.255.255.0 10.10.1.250 which tells the server to bypass the ASA and go directly to the ISP router.(then i can successfully tracert everything). The big question here is how to make the inside ASA connection 10.10.1.1 to force all traffic to 10.10.1.250.
Table of ContentsIntroductionVersion HistoryPossible Future
UpdatesDocuments PurposeNAT Operation in ASA 8.3+ SectionsRule Types
Network Object NATTwice NAT / Manual NATRule Types used per SectionNAT
Types used with Twice NAT / Manual NAT and Network Obje...
Table of Contents Introduction:This document describes details on how
NAT-T works. Background: ESP encrypts all critical information,
encapsulating the entire inner TCP/UDP datagram within an ESP header.
ESP is an IP protocol in the same sense that TCP an...